CVE-2017-5660

There is a vulnerability in Apache Traffic Server (ATS) 6.2.0 and prior and 7.0.0 and prior with the Host header and line folding. This can have issues when interacting with upstream proxies and the wrong host being used.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:*
cpe:2.3:a:apache:traffic_server:6.2.2:rc0:*:*:*:*:*:*
cpe:2.3:a:apache:traffic_server:7.0.0:rc2:*:*:*:*:*:*
cpe:2.3:a:apache:traffic_server:7.0.0:rc1:*:*:*:*:*:*
cpe:2.3:a:apache:traffic_server:7.0.0:*:*:*:*:*:*:*
cpe:2.3:a:apache:traffic_server:6.2.1:*:*:*:*:*:*:*
cpe:2.3:a:apache:traffic_server:6.2.1:rc0:*:*:*:*:*:*
cpe:2.3:a:apache:traffic_server:6.2.2:*:*:*:*:*:*:*
cpe:2.3:a:apache:traffic_server:7.0.0:rc0:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

Information

Published : 2018-02-27 12:29

Updated : 2018-03-21 09:16


NVD link : CVE-2017-5660

Mitre link : CVE-2017-5660


JSON object : View

CWE
CWE-20

Improper Input Validation

Advertisement

dedicated server usa

Products Affected

debian

  • debian_linux

apache

  • traffic_server